Try our new research platform with insights from 80,000+ expert users

AWS Firewall Manager vs FortiGate Cloud-Native Firewall (FortiGate CNF) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Firewall Manager
Ranking in Firewall Security Management
9th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
11
Ranking in other categories
No ranking in other categories
FortiGate Cloud-Native Fire...
Ranking in Firewall Security Management
8th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
17
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Firewall Security Management category, the mindshare of AWS Firewall Manager is 3.3%, down from 5.1% compared to the previous year. The mindshare of FortiGate Cloud-Native Firewall (FortiGate CNF) is 2.0%, up from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Market Share Distribution
ProductMarket Share (%)
FortiGate Cloud-Native Firewall (FortiGate CNF)2.0%
AWS Firewall Manager3.3%
Other94.7%
Firewall Security Management
 

Featured Reviews

Venda E - PeerSpot reviewer
Cloud Option Engineer at a tech vendor with 10,001+ employees
Centralized security policies have streamlined audits and ensure consistent protection by default
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during audits. Also, support for more third-party integration could improve flexibility. Another improvement I need to see is a smoother setup experience. Some of the initial configuration steps, especially around the organization and permissions, can feel complex. A more guided setup or clear UI explanation would make it easier for teams to adopt quickly. One more improvement would be better alerting options. Right now, we mostly rely on AWS Security Hub or CloudWatch for detailed alerts. Having more built-in, real-time notification directly from AWS Firewall Manager would make it easier to monitor policy violations without extra setup.
Andrew_Jackson - PeerSpot reviewer
Systems engineer at The IT Team (New Zealand)
Centralized management has streamlined access for staff and support has consistently addressed issues quickly
I see areas for improvement, particularly around the SSL VPN. It is a tool that we have used quite heavily, but it has a lot of vulnerabilities and they are starting to be dropping support for it. So we kind of see that they have left a vacuum by removing that feature. The VPN feature is indeed the main concern so far. Security around it is a concern, and then the fact that they have just dropped it and have not really provided a solution that fits for us. Their solution was either IPsec or ZTNA, which is not as flexible as the SSL VPN was for our customers.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"It is helpful for our compliance, as the compliance manager manages compliance with leading industry standards such as FedRAMP, which my company complies with, GDPR laws, and ISO 27001."
"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"The product is highly reliable."
"Overall, it improved our security posture and made audits much easier."
"The most valuable feature is scaling, which allows you to deploy one configuration and scan and deploy it across the network. The automated policy application feature also streamlines security operations."
"The interface is intuitive and it is easy for the users."
"The ability to launch third-party software is one of the best features because of the variety of software available. For me, it's one of the best ones."
"FortiGate has provided us with a good experience, making it the best firewall for our needs."
"The people I work with appreciate the stability of FortiGate Cloud-Native Firewall (FortiGate CNF), as they love its reliability."
"Centralized management definitely helps us manage security operations, a single pane of glass management is a bonus for us, and we can give our staff access to the portal and they can access all our customers."
"The important part of FortiGate CNF is the UPM. It has a significant impact on the network by providing additional attributes such as a binder filter. This feature is very beneficial."
"FortiGate Cloud-Native Firewall provides the same features that higher-end models offer, but at a much lower cost."
"Threat detection and prevention features are the most effective aspects of FortiGate CNF."
"FortiGate's offering of many features in one license is cost-effective."
 

Cons

"It needs to be more employee-friendly, and the security management could be more efficient."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"This solution is suitable for a small-scale enterprise and may not scale up to a very high volume of traffic or a large number of servers."
"They could consider organizing and enhancing documentation in a more structured and chronological manner"
"The product could benefit from improvements in the user interface and integration capabilities."
"Enabling and configuring the logging is not that straightforward."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"The system should be more customizable."
"The deployment process is complex."
"We sometimes encounter issues with the SSL certificate."
"There are some bugs that need to be fixed, and they can take some time to resolve."
"The prices for FortiGate are way too high and are perceived as overpriced."
"They should offer more affordable renewal options or flexible plans for license upgrades."
"For scalability, if the hardware isn't fit or working, the box needs changing."
"There is room for improvement in terms of support."
"The prices for FortiGate are way too high and are perceived as overpriced."
 

Pricing and Cost Advice

"It is a cost-efficient product."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"The AWS Firewall Manager is a little on the costly side."
"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"It is an expensive platform."
"The pricing is competitive."
"FortiGate Cloud-Native Firewall is not an expensive solution."
"The tool's licensing costs are cheap and yearly."
"FortiGate's price is really good."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
9%
Comms Service Provider
7%
Hospitality Company
7%
Computer Software Company
7%
Manufacturing Company
17%
Financial Services Firm
11%
Comms Service Provider
8%
Media Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Large Enterprise8
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Firewall Manager?
My experience with pricing, setup cost, and licensing for AWS Firewall Manager has been straightforward. There is no separate licensing cost for AWS Firewall Manager itself. It is included with AWS...
What needs improvement with AWS Firewall Manager?
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during a...
What is your primary use case for AWS Firewall Manager?
My main use case for AWS Firewall Manager is centrally managing and enforcing security policies across multiple AWS accounts. It helps me to ensure consistent WAF rules, security group policies, an...
What is your experience regarding pricing and costs for FortiGate Cloud-Native Firewall (FortiGate CNF)?
The pricing is a bit expensive, primarily due to licensing fees. Extra expenses include upgradations beyond licensing.
What needs improvement with FortiGate Cloud-Native Firewall (FortiGate CNF)?
I see areas for improvement, particularly around the SSL VPN. It is a tool that we have used quite heavily, but it has a lot of vulnerabilities and they are starting to be dropping support for it. ...
What is your primary use case for FortiGate Cloud-Native Firewall (FortiGate CNF)?
The major use case for this product is if customers have on-prem hardware to protect, along with the other use cases with SD-WAN and VPN connectivity.
 

Interactive Demo

 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Information Not Available
Find out what your peers are saying about AWS Firewall Manager vs. FortiGate Cloud-Native Firewall (FortiGate CNF) and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.